More jobs:
Senior Splunk Engineer
Job in
Bensalem, Bucks County, Pennsylvania, 19020, USA
Listed on 2026-06-02
Listing for:
Vaco LLC
Full Time
position Listed on 2026-06-02
Job specializations:
-
IT/Tech
Systems Engineer, Cybersecurity
Job Description & How to Apply Below
Senior Splunk Engineer DETAILS
Location:
Bensalem, PA (onsite 5-days per week) Position Type: 3-6M C2H Hourly / Salary: to $90W2 JOB SUMMARY Vaco is currently seeking a Senior Splunk Engineer for a 3-6M C2H that is located in Bensalem, PA (onsite 5-days per week). The Senior Splunk Engineer will engineer, deploy, configure, and validate a multi-site, highly available Splunk Enterprise platform and extend the platform with Splunk ES.
The Senior Splunk Engineer will handle platform buildout, data onboarding, CIM alignment, ES enablement, tuning, and operational readiness. Splunk Architecture – Design / Implement Multi-Site / Highly Available Splunk Enterprise Deployments | Cluster Manager / License Master / Deployer / Deployment Server / Monitoring Console / Multi-Site Indexer Cluster / Search Head Cluster Forwarder Deployment – Deploy / Configure Universal Forwarders / Heavy Forwarders | Build Deployment Apps / Server Classes / Automated Rollout Scripts Data Onboarding – Onboard / Validate Data Sources (Windows / Firewall / Cloud) | Ensure Proper Common Information Model (CIM) Alignment Platform Configuration – Configure Custom Indexes / Authentication (LDAP / SAML) / SMTP Relay / Load Balancer Requirements Splunk ES (Enterprise Security) – Install / Configure / Operationalize Splunk ES ES Validation – Validate ES Data Model Acceleration / Correlation Searches / Dashboards / Notable Events / Detection Use Case Logic Detection / Performance Tuning – Tune Correlation Searches / Thresholds / Data Models / Overall Platform Performance Platform Integration – Ensure ES Content Integration with the Underlying Splunk Enterprise Deployment Documentation – Produce As-Built Documentation / Architecture Diagrams / Runbooks / Tuning Guidance / Operational Procedures Platform Validation – Validate Ingest Pipelines / Cluster Stability / Search Performance / CIM Compliance / ES Functionality Knowledge Transfer / Enablement – Provide Technical Knowledge Transfer / Hands-On Enablement to Customer Engineering Teams JOB REQUIREMENTS Senior Splunk Engineering (5+ years) – Engineering Splunk Enterprise in Distributed / Clustered Environments Splunk Performance / Tuning (expertise) – Diagnosing / Optimizing Platform Performance | Indexer Cluster Replication Factors / Search Head Clustering Member Health / Data Model Acceleration / KV Storage Usage / Resource Utilization (CPU / Memory / I/O) | Reducing MTTR via Proactive Tuning of Correlation Searches / Thresholds / Suppression Rules Splunk SPL (advanced) – Write / Optimize / Debug Complex SPL Queries (Statistical Commands / Lookups / Macros / Event types / Tags / Data Models / Subsearches) for Detection Logic / Performance Tuning / Custom Content Development) Splunk ES Deployment (hands-on) – Deploying / Tuning Splunk Enterprise Security in Production Environments | Configure / Operationalize / Maintain SE | Installation / App/Framework Enablement / Data Model Acceleration / Notable Event Handling / Risk-Based Alerting / Asset/Identity Correlation / Integration with Core Splunk Data Onboarding / CIM (advanced) – Onboard Diverse Data Sources (Windows Events / Firewall Logs / Cloud Services / Endpoints / Networks) / Perform Common Information Model (CIM) Alignment (Field Extractions / Props.conf/Transforms.conf
Configuration) Scripting / Automation – Python / BASH / Power Shell | Automating Forwarder Deployments / Configuration Management / Rollout Scripts / Custom Apps / REST API Interactions, etc. Linux Administration (strong) – Server Hardening / Package Management / File System Configuration Process Monitoring / Log Rotation / Troubleshooting Splunk Processes in Linux-based Deployments Networking (strong understanding) – Enterprise Networking Fundamentals | TCP/IP / Firewalls / Load Balancers / DNS / VLANs | Network Troubleshooting | Splunk Impact (Data Flow / Forwarder Communication / Clustering Replication / Search Head Clustering) Authentication Integration – Integrating with Enterprise Authentication Systems (LDAP / SAML / AD / SSO Providers) | Configuring RBAC / Implementing Secure Multi-Tenancy Documentation / Operationalization – Create / Develop /…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×